Improper access control in permissions component in Devolutions Server 2025.1.10.0 and earlier allows an authenticated user to bypass the "Edit permission" permission by bypassing the client side validation.
| Software | From | Fixed in |
|---|---|---|
| devolutions / devolutions_server | - | 2025.1.10.0.x |